Improper input validation in Transactions Platform in Google Chrome on on iOS prior to 152.0.7977.82 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Metrics
Affected Vendors & Products
References
History
Tue, 08 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple iphone Os |
|
| CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Apple
Apple iphone Os |
Thu, 03 Sep 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Google Chrome iOS Remote Code Execution via Crafted HTML |
Thu, 03 Sep 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome |
|
| Vendors & Products |
Google
Google chrome |
Thu, 03 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 03 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in Transactions Platform in Google Chrome on on iOS prior to 152.0.7977.82 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) | |
| Weaknesses | CWE-20 | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published: 2026-09-03T19:26:14.754Z
Updated: 2026-09-04T03:56:09.428Z
Reserved: 2026-09-02T21:13:08.098Z
Link: CVE-2026-85047
Updated: 2026-09-03T19:59:19.704Z
Status : Analyzed
Published: 2026-09-03T20:17:24.690
Modified: 2026-09-08T16:19:18.940
Link: CVE-2026-85047
No data.